
【国外标准】 Information technology -- Security techniques -- Vulnerability disclosure
本网站 发布时间:
2024-08-08
开通会员免费在线看70000余条国内标准,赠送文本下载次数,单本最低仅合13.3元!还可享标准出版进度查询、定制跟踪推送、标准查新等超多特权!  
查看详情>>

适用范围:
provides requirements and recommendations to vendors on the disclosure of vulnerabilities in products and services. Vulnerability disclosure enables users to perform technical vulnerability management as specified in ISO/IEC 27002:2013, 12.6.1[1]. Vulnerability disclosure helps users protect their systems and data, prioritize defensive investments, and better assess risk. The goal of vulnerability disclosure is to reduce the risk associated with exploiting vulnerabilities. Coordinated vulnerability disclosure is especially important when multiple vendors are affected.
标准号:
INCITS/ISO/IEC 29147:2018 (2019)
标准名称:
Information technology -- Security techniques -- Vulnerability disclosure
英文名称:
Information technology -- Security techniques -- Vulnerability disclosure标准状态:
现行-
发布日期:
-
实施日期:
出版语种:
- 推荐标准
- AS 2300.6.5-1990 (R2019)/Amdt 1-1992 Methods of chemical and physical testing for the dairying industry - Cheese - Determination of salt
- AS 2300.6.5-1990 (R2019)/Amdt 2-1997 Methods of chemical and physical testing for the dairying industry - Cheese - Determination of salt
- AS 2805.6.1.1-2009 (R2019)/Amdt 1-2011 Electronic funds transfer - Requirements for interfaces Key management - Principles
- AS 3565.4-2007 (R2019)/Amdt 1-2010 Meters for water supply In-service compliance testing
- AS 4629-2005 (R2018)/Amdt 1-2007 Automatic shut off valves and vent valves
- AS IEC 60300.3.11-2011 Dependability management Application guide - Reliability centred maintenance
- AS IEC 60300.3.12-2011 Dependability management Application guide - Integrated logistic support
- AS IEC 60300.3.15-2011 Dependability management Application guide - Engineering of system dependability
- AS IEC 60812-2008 Analysis techniques for system reliability - Procedure for failure mode and effects analysis (FMEA)
- AS IEC 60942-2004 Electroacoustics - Sound calibrators
- AS IEC 61131.3-2004 Programmable controllers Programming languages
- AS IEC 61672.1-2004 Electroacoustics - Sound level meters Specifications
- AS IEC 62628:2014 Guidance on software aspects of dependability
- AS ISO 10006-2003 Quality management systems - Guidelines for quality management in projects
- AS ISO 10014-2007 Quality management systems - Guidelines for realizing financial and economic benefits